0% found this document useful (0 votes)
28 views33 pages

XR NIP Report HZBGNRTSESR001 I-BR-HZBG-ENB-0001

Uploaded by

ranjeetsharma029
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
0% found this document useful (0 votes)
28 views33 pages

XR NIP Report HZBGNRTSESR001 I-BR-HZBG-ENB-0001

Uploaded by

ranjeetsharma029
Copyright
© © All Rights Reserved
We take content rights seriously. If you suspect this is your content, claim it here.
Available Formats
Download as TXT, PDF, TXT or read online on Scribd
You are on page 1/ 33

crypto key generate rsa

yes
2048
!
# Normal Configuration mode #
conf t
hostname HZBGNRTSESR001
!
group LABEL-MODE-PER-VRF
router bgp '55836'
vrf '.*'
address-family ipv4 unicast
label mode per-vrf
!
address-family ipv6 unicast
label mode per-vrf
!
!
!
end-group
taskgroup READ-ONLY-TGRD
task read fr
task read aaa
task read acl
task read atm
task read bfd
task read bgp
task read cef
task read eem
task read ppp
task read qos
task read rib
task read sbc
task read bcdl
task read boot
task read diag
task read hdlc
task read hsrp
task read ipv4
task read ipv6
task read isis
task read lpts
task read ospf
task read ouni
task read snmp
task read vlan
task read vrrp
task read admin
task read l2vpn
task read bundle
task read crypto
task read fabric
task read static
task read sysmgr
task read system
task read tunnel
task read drivers
task read logging
task read monitor
task read mpls-te
task read netflow
task read network
task read pos-dpt
task read firewall
task read mpls-ldp
task read pkg-mgmt
task read fault-mgr
task read interface
task read inventory
task read multicast
task read route-map
task read sonet-sdh
task read transport
task read ext-access
task read filesystem
task read tty-access
task read config-mgmt
task read ip-services
task read mpls-static
task read route-policy
task read host-services
task read basic-services
task read config-services
task read ethernet-services
task debug bfd
task debug bgp
task debug qos
task debug isis
task debug vrrp
task debug ethernet-services
inherit taskgroup operator
!
taskgroup READ-ONLY-TGRP
task read fr
task read aaa
task read acl
task read atm
task read bfd
task read bgp
task read cef
task read ppp
task read qos
task read rib
task read sbc
task read bcdl
task read boot
task read diag
task read hdlc
task read hsrp
task read ipv4
task read ipv6
task read isis
task read lpts
task read ospf
task read ouni
task read snmp
task read vlan
task read vrrp
task read admin
task read eigrp
task read l2vpn
task read bundle
task read crypto
task read fabric
task read static
task read sysmgr
task read system
task read tunnel
task read drivers
task read logging
task read monitor
task read mpls-te
task read netflow
task read network
task read pos-dpt
task read firewall
task read mpls-ldp
task read pkg-mgmt
task read fault-mgr
task read interface
task read inventory
task read multicast
task read route-map
task read sonet-sdh
task read transport
task read ext-access
task read filesystem
task read tty-access
task read config-mgmt
task read ip-services
task read mpls-static
task read route-policy
task read host-services
task read basic-services
task read config-services
task execute basic-services
inherit taskgroup operator
!
taskgroup READ-WRITE-TGRD-LEVEL-3
task read fr
task read li
task read aaa
task read acl
task read atm
task read bfd
task read cef
task read eem
task read nps
task read pbr
task read ppp
task read qos
task read rib
task read rip
task read sbc
task read ancp
task read bcdl
task read boot
task read diag
task read dwdm
task read hdlc
task read ipv4
task read ipv6
task read isis
task read lisp
task read lpts
task read ospf
task read ouni
task read rcmd
task read snmp
task read vlan
task read vpdn
task read vrrp
task read admin
task read l2vpn
task read bundle
task read crypto
task read fabric
task read static
task read sysmgr
task read system
task read tunnel
task read drivers
task read logging
task read monitor
task read mpls-te
task read netflow
task read network
task read pos-dpt
task read firewall
task read mpls-ldp
task read pkg-mgmt
task read call-home
task read fault-mgr
task read interface
task read inventory
task read multicast
task read route-map
task read sonet-sdh
task read transport
task read filesystem
task read tty-access
task read config-mgmt
task read ip-services
task read mpls-static
task read route-policy
task read host-services
task read basic-services
task read ethernet-services
task write fr
task write li
task write aaa
task write acl
task write atm
task write bfd
task write cef
task write eem
task write nps
task write pbr
task write ppp
task write qos
task write rib
task write sbc
task write ancp
task write bcdl
task write boot
task write diag
task write dwdm
task write hdlc
task write ipv4
task write ipv6
task write isis
task write lisp
task write lpts
task write ospf
task write ouni
task write rcmd
task write snmp
task write vlan
task write vpdn
task write vrrp
task write admin
task write l2vpn
task write bundle
task write crypto
task write fabric
task write static
task write sysmgr
task write system
task write tunnel
task write drivers
task write logging
task write monitor
task write mpls-te
task write netflow
task write network
task write pos-dpt
task write firewall
task write mpls-ldp
task write pkg-mgmt
task write call-home
task write fault-mgr
task write interface
task write inventory
task write multicast
task write route-map
task write sonet-sdh
task write transport
task write filesystem
task write tty-access
task write config-mgmt
task write ip-services
task write mpls-static
task write route-policy
task write host-services
task write basic-services
task write ethernet-services
task debug fr
task debug aaa
task debug acl
task debug atm
task debug bfd
task debug cef
task debug eem
task debug nps
task debug pbr
task debug ppp
task debug qos
task debug rib
task debug sbc
task debug ancp
task debug bcdl
task debug boot
task debug diag
task debug dwdm
task debug hdlc
task debug ipv4
task debug ipv6
task debug isis
task debug lisp
task debug lpts
task debug ospf
task debug ouni
task debug rcmd
task debug snmp
task debug vlan
task debug vpdn
task debug vrrp
task debug admin
task debug l2vpn
task debug bundle
task debug crypto
task debug fabric
task debug static
task debug sysmgr
task debug system
task debug tunnel
task debug drivers
task debug logging
task debug monitor
task debug mpls-te
task debug netflow
task debug network
task debug pos-dpt
task debug firewall
task debug mpls-ldp
task debug pkg-mgmt
task debug call-home
task debug fault-mgr
task debug interface
task debug inventory
task debug multicast
task debug route-map
task debug sonet-sdh
task debug transport
task debug filesystem
task debug tty-access
task debug config-mgmt
task debug ip-services
task debug mpls-static
task debug route-policy
task debug host-services
task debug basic-services
task debug ethernet-services
!
usergroup READ-ONLY-UGRD
taskgroup READ-ONLY-TGRD
!
usergroup READ-WRITE-UGRP
taskgroup netadmin
taskgroup serviceadmin
taskgroup READ-WRITE-TGRD-LEVEL-3
!
aaa password-policy LOCAL-USER
lockout-time minutes 30
authen-max-attempts 3
!
aaa default-taskgroup READ-ONLY-TGRP
!
clock timezone IST Asia/Calcutta
!
banner motd #
-----------------------------------------------------------------------------------
-------------------
DO NOT LOGON WITHOUT AUTHORIZATION
-----------------------------------------------------------------------------------
-------------------#
banner login #
You are attempting to log into a system owned and operated by RJIL.
If you are not authorized to access this system, please cancel your logon attempt
immediately.
All activities on this system may be monitored.
All data residing on this system is a property of RJIL.
Any Unauthorized use, duplication, or disclosure of this device or its contents
and/or
the attempt to gain unauthorized access is strictly prohibited and unlawful and may
lead to legal prosecution.
GCT v1.9
NE-ID INBRHZBGNRTSTW0001ENBESR001
SAP-ID I-BR-HZBG-ENB-0001
FAC-ID INBRHZBGNRTSTW0001
HostName HZBGNRTSESR001
-----------------------------------------------------------------------------------
-------------------#
!
logging trap debugging
logging console debugging
logging monitor notifications
logging buffered 125000000
logging buffered debugging
logging 2405:200:816:651::30 vrf RJIL-IP-MGMT severity debugging port default
logging 2405:200:A80:FD19:5DC:98E5:692C:2012 vrf RJIL-IP-MGMT severity debugging
port default
logging source-interface Loopback999 vrf RJIL-IP-MGMT
service timestamps log datetime localtime msec show-timezone
service timestamps debug datetime localtime msec show-timezone
domain name INFRA.JIO.COM
domain lookup disable
tacacs source-interface Loopback999 vrf RJIL-IP-MGMT
tacacs-server host 10.70.57.84 port 49
key Rjio@55836
timeout 15
!
tacacs-server host 10.70.64.116 port 49
key Rjio@55836
timeout 15
!
tacacs-server ipv4 dscp af21
tacacs-server ipv6 dscp af21
!
username rjil
group root-lr
group cisco-support
policy LOCAL-USER
secret Rjil123
!
aaa accounting exec AAA-VTY-ACS start-stop group ACSSERVER
aaa accounting exec AAA-CONSOLE-LOCAL start-stop group ACSSERVER
aaa accounting commands AAA-VTY-ACS start-stop group ACSSERVER
aaa accounting commands AAA-CONSOLE-LOCAL start-stop group ACSSERVER
aaa group server tacacs+ ACSSERVER
server 10.70.57.84
server 10.70.64.116
vrf RJIL-IP-MGMT
!
aaa authorization exec AAA-VTY-ACS group ACSSERVER local
aaa authorization commands default group ACSSERVER local
aaa authorization commands AAA-VTY-ACS group ACSSERVER local
aaa authorization commands AAA-CONSOLE-LOCAL group ACSSERVER local
aaa authentication login AAA-VTY-ACS group ACSSERVER local
aaa authentication login AAA-CONSOLE-LOCAL group ACSSERVER local
!
vrf RJIL-IME
description *** FOR IME SERVICES ***
address-family ipv4 unicast
import route-target
64760:13301
!
export route-target
64760:133
!
!
address-family ipv6 unicast
import route-target
64760:13301
!
export route-target
64760:133
!
!
!
vrf Mgmt-intf
address-family ipv4 unicast
!
address-family ipv6 unicast
!
!
vrf RJIL-IP-MGMT
description *** For Out-of-Band management ***
address-family ipv4 unicast
import route-target
64820:99
64820:13301
!
export route-target
64820:99
64820:133
!
!
address-family ipv6 unicast
import route-target
64820:13301
!
export route-target
64820:133
!
!
!
vrf RJIL-OAM-ENB
description *** FOR O&M LTE SERVICES ***
address-family ipv6 unicast
import route-target
64720:13301
!
export route-target
64720:133
!
!
!
vrf RJIL-BEARER-ENB
description *** FOR BEARER LTE SERVICES ***
address-family ipv6 unicast
import route-target
64730:13301
64740:52275
!
export route-target
64730:133
64740:52275
!
!
!
vrf RJIL-WIFI-CISCO
description *** FOR CISCO WIFI SERVICES ***
address-family ipv4 unicast
import route-target
64750:13301
!
export route-target
64750:133
!
!
address-family ipv6 unicast
import route-target
64750:13301
!
export route-target
64750:133
!
!
!
vrf RJIL-SIGNALING-ENB
description *** FOR SIGNALLING LTE SERVICES ***
address-family ipv6 unicast
import route-target
64710:13301
!
export route-target
64710:133
!
!
!
tcp path-mtu-discovery
!
line console
accounting commands AAA-CONSOLE-LOCAL
authorization commands AAA-CONSOLE-LOCAL
login authentication AAA-CONSOLE-LOCAL
timestamp
exec-timeout 5 0
length 0
session-limit 5
session-timeout 5
transport output none
!
line template SSH-TEMPLATE
accounting exec AAA-VTY-ACS
accounting commands AAA-VTY-ACS
authorization exec AAA-VTY-ACS
authorization commands AAA-VTY-ACS
login authentication AAA-VTY-ACS
timestamp
exec-timeout 5 0
access-class ingress MGMT-VTY-IPV4-IPV6
session-limit 5
session-timeout 5
transport input ssh
transport output ssh
!
vty-pool default 0 20 line-template SSH-TEMPLATE
http client vrf RJIL-IP-MGMT
http client source-interface ipv6 Loopback999
ipv6 nd scavenge-timeout 3000
!
snmp-server ifmib ifalias long
snmp-server ifindex persist
snmp-server ifmib stats cache
snmp-server vrf RJIL-IP-MGMT
host 2405:200:A80:FD19:5DC:98E5:692C:1206 traps version 2c OnM4G@Ge0 dying-gasp
!
snmp-server community OnM4G@Ge0 RO IPv4 MGMT-SNMP-IPv4 IPv6 MGMT-SNMP-IPv6
snmp-server queue-length 1000
snmp-server traps rf
snmp-server traps bfd
snmp-server traps ntp
snmp-server traps snmp linkup
snmp-server traps snmp linkdown
snmp-server traps snmp coldstart
snmp-server traps snmp warmstart
snmp-server traps snmp authentication
snmp-server traps flash removal
snmp-server traps flash insertion
snmp-server traps config
snmp-server traps entity
snmp-server traps system
snmp-server traps frequency synchronization
snmp-server traps entity-state operstatus
snmp-server traps entity-state switchover
snmp-server traps entity-redundancy all
snmp-server traps entity-redundancy status
snmp-server traps entity-redundancy switchover
snmp-server trap-source Loopback999
!
fpd auto-upgrade enable
ftp client source-interface Loopback999
!
ntp
authentication-key 1 md5 Rjio@Ntp
authenticate
trusted-key 1
server vrf RJIL-IP-MGMT 172.26.218.20 key 1 prefer
server vrf RJIL-IP-MGMT 172.26.218.21 key 1
master 5
access-group vrf RJIL-IP-MGMT ipv4 peer NTP-ACL-IPV4
source vrf RJIL-IP-MGMT Loopback999
update-calendar
!
bfd
multihop ttl-drop-threshold 225
multipath include location 0/RP0/CPU0
echo disable
!
tftp client source-interface Loopback999
!
key chain ISIS-KEY
key 1
accept-lifetime 01:00:00 january 01 2021 infinite
key-string clear R4G_IsIs_P33r.2O14
send-lifetime 01:00:00 january 01 2021 infinite
cryptographic-algorithm HMAC-MD5
!
!
call-home
vrf RJIL-IP-MGMT
service active
contact smart-licensing
profile CiscoTAC-1
active
destination address http
https://[2405:200:A80:fdf5::b]/Transportgateway/services/DeviceRequestHandler
destination transport-method http
!
!
netconf-yang agent
ssh
!
ipv6 access-list MCAST-BDR-IPv6
10 permit ipv6 any ff30::/12
!
ipv6 access-list MCAST-SSM-IPV6
10 permit ipv6 ff30::/28 any
!
ipv6 access-list MGMT-SNMP-IPv6
10 permit ipv6 2405:200:a10:fc00::/64 any
20 permit ipv6 2405:200:a10:fc04::/64 any
30 permit ipv6 2405:200:a10:fc09::/64 any
40 permit ipv6 2405:200:a10:fcb0::/64 any
50 permit ipv6 2405:200:a10:fcb1::/64 any
60 permit ipv6 2405:200:a10:fcba::/64 any
70 permit ipv6 2405:200:a10:fcc7::/64 any
80 permit ipv6 2405:200:a60:fdc0::/64 any
90 permit ipv6 2405:200:a10:fcc0::/64 any
100 permit ipv6 2405:200:a10:fcc4::/64 any
110 permit ipv6 2405:200:800::/44 any
120 permit ipv6 2405:200:855:2575::/64 any
130 permit ipv6 2405:200:a80:fd19:5dc:98e5:692c:0/112 any
140 permit ipv6 2405:200:a70:f018:10:147:136:0/112 any
!
ipv6 access-list MGMT-VTY-IPv4-IPv6
10 permit ipv6 2405:200:a10:fcb0::/64 any
20 permit ipv6 2405:200:a10:fcb1::/64 any
30 permit ipv6 2405:200:a60:fdc0::/64 any
40 permit ipv6 2405:200:a10:fc80::/64 any
50 permit ipv6 2405:200:a60:f0f0::/60 any
60 permit ipv6 2405:200:a10:fcc4::/64 any
70 permit ipv6 2405:200:a10:fcc0::/64 any
80 permit ipv6 2405:200:802:679::/64 any
90 permit ipv6 2405:200:804:651::/64 any
100 permit ipv6 2405:200:806:651::/64 any
110 permit ipv6 2405:200:808:651::/64 any
120 permit ipv6 2405:200:100::/40 any
130 permit ipv6 2405:200:a10:fcc7::/64 any
140 permit ipv6 2405:200:855:2575::/64 any
150 permit ipv6 2405:200:800::/44 any
160 permit ipv6 2405:200:a80:fd19:5dc:98e5:692c:0/112 any
170 permit ipv6 2405:200:a70:f018:10:147:136:0/112 any
!
ipv6 access-list INFRA-iACL-IPv6-LTE
10 remark Phase 1 a anti-spoofing and Fragmentation Denies
20 remark Permit RJIL ILL Customer
30 permit ipv6 2405:200::/40 any
60 permit ipv6 any 2405:200::/40
70 remark Deny access to RJIL Infrastructure devices
80 deny ipv6 any 2405:200:200::/40
90 remark Deny RIL infrastructure space as a source of external packets
100 deny ipv6 2405:200:200::/40 any
110 remark Deny special-use address sources Refer RFC6890
120 deny ipv6 ::/8 any
130 deny ipv6 fec0::/10 any
140 deny ipv6 fc00::/7 any
150 deny ipv6 ff00::/8 any
160 deny ipv6 any 2001:10::/28
170 deny ipv6 2001:10::/28 any
180 deny ipv6 any 2001:db8::/32
190 deny ipv6 2001:db8::/32 any
200 permit ipv6 any 2001:2::/48
210 permit ipv6 any 2001::/32
220 deny ipv6 any 2001::/23
230 deny ipv6 2001::/23 any
240 remark deny false 6to4 packets
250 deny ipv6 2002:e000::/20 any
260 deny ipv6 2002:7f00::/24 any
270 deny ipv6 2002::/24 any
280 deny ipv6 2002:ff00::/24 any
290 deny ipv6 2002:a00::/24 any
300 deny ipv6 2002:ac10::/28 any
310 deny ipv6 2002:c0a8::/32 any
320 deny ipv6 host :: any
330 remark deny loopback address
340 deny ipv6 host ::1 any
350 deny ipv6 host 1:: any
360 remark deny ipv4-compatible addresses
370 deny ipv6 ::/96 any
380 remark ipv4 mapped adresses - obsoleted
390 deny ipv6 ::ffff:0.0.0.0/96 any
400 remark deny auto tunneled packets with/compatible
410 remark deny other compatible addresses
420 deny ipv6 ::224.0.0.0/100 any
430 deny ipv6 ::127.0.0.0/104 any
440 deny ipv6 ::/104 any
450 deny ipv6 ::255.0.0.0/104 any
460 remark deny 6bone addresses - depreciated
470 deny ipv6 3ffe::/16 any
480 remark Phase 2 a explicit Permit
490 permit ipv6 any any
500 remark Deny special-use address sources.
510 remark Deny RJIL Infrastructure device as a source of external packets
520 deny ipv6 any 2405:200::/32
530 deny ipv6 any 2405:200::/32
540 deny ipv6 2405:200::/32 any
!
ipv4 access-list NTP-ACL-IPV4
10 permit ipv4 host 172.26.218.20 any
20 permit ipv4 host 172.26.218.21 any
!
ipv4 access-list MCAST-SSM-IPV4
10 permit ipv4 232.0.0.0/8 any
!
ipv4 access-list MGMT-SNMP-IPv4
10 deny ipv4 any any
!
ipv4 access-list MGMT-VTY-IPv4-IPv6
10 deny ipv4 any any
!
ipv4 access-list MPLS-LOOPBACK-IPV4
10 permit ipv4 49.44.0.0 0.0.255.255 any
20 permit ipv4 172.16.0.0 0.15.255.255 any
!
ipv4 access-list INFRA-iACL-IPv4-WiFi
10 remark Phase 1 a Anti-spoofing,Fragmentation,Attack Denies
20 remark Deny Fragments
30 deny tcp any 49.44.0.0 0.0.7.255 fragments
40 deny udp any 49.44.0.0 0.0.7.255 fragments
50 deny icmp any 49.44.0.0 0.0.7.255 fragments
60 deny tcp any any eq 5900
70 remark Deny access to RJIL Infrastructure devices
80 deny ipv4 any 49.44.0.0 0.0.7.255
90 remark Deny special-use address sources.
100 remark See RFC 3330 for additional special-use addresses.
110 deny ipv4 host 0.0.0.0 any
120 deny ipv4 any 0.0.0.0 0.255.255.255
130 deny ipv4 0.0.0.0 0.255.255.255 any
140 deny ipv4 host 255.255.255.255 any
150 deny ipv4 127.0.0.0 0.255.255.255 any
160 deny ipv4 any 127.0.0.0 0.255.255.255
170 deny ipv4 169.254.0.0 0.0.255.255 any
180 deny ipv4 192.0.2.0 0.0.0.255 any
190 deny ipv4 any 192.0.2.0 0.0.0.255
200 deny ipv4 192.18.0.0 0.1.255.255 any
210 deny ipv4 any 192.18.0.0 0.1.255.255
220 deny ipv4 192.0.0.0 0.0.0.255 any
230 deny ipv4 any 192.0.0.0 0.0.0.255
240 deny ipv4 224.0.0.0 31.255.255.255 any
250 remark Deny RFC1918 space from entering AS
260 permit ipv4 any 10.73.1.0 0.0.0.63
270 permit ipv4 any 10.70.120.64 0.0.0.15
280 permit ipv4 any 10.70.120.80 0.0.0.15
290 permit ipv4 any 10.70.120.0 0.0.0.15
300 permit ipv4 any host 172.16.92.209
310 permit ipv4 any host 172.16.92.213
320 deny ipv4 192.168.0.0 0.0.255.255 any
330 deny ipv4 any 10.0.0.0 0.255.255.255
340 deny ipv4 any 172.16.0.0 0.15.255.255
350 deny ipv4 any 192.168.0.0 0.0.255.255
360 remark See RFC5737
370 deny ipv4 198.51.100.0 0.0.0.255 any
380 deny ipv4 any 198.51.100.0 0.0.0.255
390 deny ipv4 203.0.113.0 0.0.0.255 any
400 deny ipv4 any 203.0.113.0 0.0.0.255
410 remark Deny RIL infrastructure space as a source of external packets
420 deny ipv4 49.44.0.0 0.0.7.255 any
430 remark Phase 2 a Explicit Permit
440 permit ipv4 any any
!
community-set RJIL-PEER-AG1-OUT
ios-regex '_64600:1.._'
end-set
!
route-policy RJIL-PEER-AG1-OUT
if community matches-any RJIL-PEER-AG1-OUT then
set next-hop self
done
endif
end-policy
!
class-map match-any QOS-OAM-TC
match traffic-class 2
end-class-map
!
class-map match-any QOS-IPTV-TC
match traffic-class 4
end-class-map
!
class-map match-any QOS-OAM-EXP
match mpls experimental topmost 2
end-class-map
!
class-map match-any QOS-IPTV-EXP
match mpls experimental topmost 4
end-class-map
!
class-map match-any QOS-OAM-DSCP
match dscp cs2
end-class-map
!
class-map match-any QOS-OAM-QGRP
match qos-group 2
end-class-map
!
class-map match-any QOS-IPTV-DSCP
match dscp af31 af41
end-class-map
!
class-map match-any QOS-IPTV-QGRP
match qos-group 4
end-class-map
!
class-map match-any QOS-VOICE-EXP
match mpls experimental topmost 5
end-class-map
!
class-map match-any QOS-SIGNALING-DSCP
match dscp cs5
end-class-map
!
class-map match-any QOS-VOICE-DSCP
match dscp ef cs7
end-class-map
!
class-map match-any QOS-VOICE-QGRP
match qos-group 5
end-class-map
!
class-map match-any QOS-WIRELINE-TC
match traffic-class 6
end-class-map
!
class-map match-any QOS-WIRELINE-EXP
match mpls experimental topmost 6
end-class-map
!
class-map match-any QOS-SIGNALING-EXP
match mpls experimental topmost 7
end-class-map
!
class-map match-any QOS-WIRELINE-DSCP
match dscp cs6
end-class-map
!
class-map match-any QOS-WIRELINE-QGRP
match qos-group 6
end-class-map
!
class-map match-any QOS-INT-PREMIUM-TC
match traffic-class 1
end-class-map
!
class-map match-any QOS-SIGNALING-QGRP
match qos-group 7
end-class-map
!
class-map match-any QOS-INT-PREMIUM-EXP
match mpls experimental topmost 1
end-class-map
!
class-map match-any QOS-INT-PREMIUM-DSCP
match dscp af22
end-class-map
!
class-map match-any QOS-INT-PREMIUM-QGRP
match qos-group 1
end-class-map
!
class-map match-all QOS-IPTV-QGRP-EXCEED
match qos-group 4
match discard-class 1
end-class-map
!
class-map match-all QOS-IPTV-QGRP-CONFORM
match qos-group 4
match discard-class 0
end-class-map
!
class-map match-any QOS-VOICE-TC
match traffic-class 5
end-class-map
!
class-map match-any QOS-SIGNALING-TC
match traffic-class 7
end-class-map
!
class-map match-any QOS-HOSTED-AV-SMARTSCHEDULER-TC
match traffic-class 3
end-class-map
!
class-map match-any QOS-HOSTED-AV-SMARTSCHEDULER-EXP
match mpls experimental topmost 3
match dscp af32
end-class-map
!
class-map match-any QOS-HOSTED-AV-SMARTSCHEDULER-DSCP
match dscp af32
end-class-map
!
class-map match-any QOS-HOSTED-AV-SMARTSCHEDULER-QGRP
match qos-group 3
end-class-map
!
class-map match-all QOS-HOSTED-AV-SMARTSCHEDULER-QGRP-EXCEED
match qos-group 3
match discard-class 1
end-class-map
!
class-map match-all QOS-HOSTED-AV-SMARTSCHEDULER-QGRP-CONFORM
match qos-group 3
match discard-class 0
end-class-map
!
!
policy-map RJIL-QOS-ENB-UNI-IN
class QOS-WIRELINE-DSCP
set qos-group 6
set traffic-class 6
!
class QOS-HOSTED-AV-SMARTSCHEDULER-DSCP
set qos-group 3
set traffic-class 3
!
class QOS-INT-PREMIUM-DSCP
set qos-group 1
set traffic-class 1
!
class QOS-IPTV-DSCP
set qos-group 4
set traffic-class 4
!
class QOS-OAM-DSCP
set qos-group 2
set traffic-class 2
!
class QOS-VOICE-DSCP
set qos-group 5
set traffic-class 5
!
class QOS-SIGNALING-DSCP
set qos-group 7
set traffic-class 7
!
class class-default
!
end-policy-map
!
policy-map RJIL-QOS-WAP-UNI-IN-CHILD
class QOS-WIRELINE-DSCP
set qos-group 6
set traffic-class 6
!
class QOS-HOSTED-AV-SMARTSCHEDULER-DSCP
set qos-group 3
set traffic-class 3
!
class QOS-INT-PREMIUM-DSCP
set qos-group 1
set traffic-class 1
!
class QOS-IPTV-DSCP
set qos-group 4
set traffic-class 4
!
class QOS-OAM-DSCP
set qos-group 2
set traffic-class 2
!
class QOS-SIGNALING-DSCP
set qos-group 7
set traffic-class 7
!
class QOS-VOICE-DSCP
set qos-group 5
set traffic-class 5
!
class class-default
!
end-policy-map
!
policy-map RJIL-QOS-IME-UNI-IN-PARENT
class class-default
police rate 10000000 bps
set qos-group 4
!
end-policy-map
!
policy-map RJIL-QOS-WAP-UNI-IN-PARENT
class class-default
service-policy RJIL-QOS-WAP-UNI-IN-CHILD
police rate 100000000 bps
!
!
end-policy-map
!
policy-map RJIL-QOS-ENB-UNI-OUT-PARENT
class QOS-VOICE-TC
priority level 1
shape average percent 40
!
class QOS-SIGNALING-TC
priority level 2
shape average percent 20
!
class QOS-WIRELINE-TC
priority level 3
shape average percent 15
!
class QOS-IPTV-TC
bandwidth remaining percent 28
!
class QOS-HOSTED-AV-SMARTSCHEDULER-TC
bandwidth remaining percent 14
!
class QOS-OAM-TC
bandwidth remaining percent 7
!
class QOS-INT-PREMIUM-TC
bandwidth remaining percent 24
queue-limit 491520 bytes
!
class class-default
bandwidth remaining percent 27
queue-limit 491520 bytes
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-IN-PARENT
class QOS-SIGNALING-EXP
set qos-group 7
set traffic-class 7
!
class QOS-VOICE-EXP
set qos-group 5
set traffic-class 5
!
class QOS-WIRELINE-EXP
set qos-group 6
set traffic-class 6
!
class QOS-IPTV-EXP
set qos-group 4
set traffic-class 4
!
class QOS-HOSTED-AV-SMARTSCHEDULER-EXP
set qos-group 3
set traffic-class 3
!
class QOS-OAM-EXP
set qos-group 2
set traffic-class 2
!
class QOS-INT-PREMIUM-EXP
set qos-group 1
set traffic-class 1
!
class class-default
!
end-policy-map
!
policy-map RJIL-QOS-WAP-UNI-OUT-PARENT
class QOS-VOICE-TC
priority level 1
shape average percent 40
!
class QOS-SIGNALING-TC
priority level 2
shape average percent 20
!
class QOS-WIRELINE-TC
priority level 3
shape average percent 15
!
class QOS-IPTV-TC
bandwidth remaining percent 28
!
class QOS-HOSTED-AV-SMARTSCHEDULER-TC
bandwidth remaining percent 14
!
class QOS-OAM-TC
bandwidth remaining percent 7
!
class QOS-INT-PREMIUM-TC
bandwidth remaining percent 24
queue-limit 491520 bytes
!
class class-default
bandwidth remaining percent 27
queue-limit 491520 bytes
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-OUT-MW-MARKING
class QOS-WIRELINE-QGRP
set mpls experimental imposition 6
!
class QOS-HOSTED-AV-SMARTSCHEDULER-QGRP
set mpls experimental imposition 3
!
class QOS-INT-PREMIUM-QGRP
set mpls experimental imposition 1
!
class QOS-IPTV-QGRP
set mpls experimental imposition 4
!
class QOS-OAM-QGRP
set mpls experimental imposition 2
!
class QOS-SIGNALING-QGRP
set mpls experimental imposition 7
!
class QOS-VOICE-QGRP
set mpls experimental imposition 5
!
class class-default
set mpls experimental imposition 0
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-OUT-PARENT-MARKING
class QOS-VOICE-QGRP
set mpls experimental imposition 5
!
class QOS-SIGNALING-QGRP
set mpls experimental imposition 7
!
class QOS-WIRELINE-QGRP
set mpls experimental imposition 6
!
class QOS-IPTV-QGRP-CONFORM
set mpls experimental imposition 4
!
class QOS-IPTV-QGRP-EXCEED
set mpls experimental imposition 3
!
class QOS-HOSTED-AV-SMARTSCHEDULER-QGRP-CONFORM
set mpls experimental imposition 3
!
class QOS-HOSTED-AV-SMARTSCHEDULER-QGRP-EXCEED
set mpls experimental imposition 1
!
class QOS-OAM-QGRP
set mpls experimental imposition 2
!
class QOS-INT-PREMIUM-QGRP
set mpls experimental imposition 1
!
class class-default
set mpls experimental imposition 0
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-OUT-PARENT-QUEUING
class QOS-VOICE-TC
priority level 1
shape average percent 40
queue-limit 400 us
!
class QOS-SIGNALING-TC
priority level 2
shape average percent 20
queue-limit 400 us
!
class QOS-WIRELINE-TC
priority level 3
shape average percent 15
!
class QOS-IPTV-TC
bandwidth remaining percent 28
queue-limit 100 ms
!
class QOS-HOSTED-AV-SMARTSCHEDULER-TC
bandwidth remaining percent 14
queue-limit 100 ms
!
class QOS-OAM-TC
bandwidth remaining percent 7
queue-limit 200 ms
!
class QOS-INT-PREMIUM-TC
bandwidth remaining percent 24
queue-limit 250 ms
!
class class-default
bandwidth remaining percent 27
queue-limit 300 ms
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-OUT-MW-250-QUEUING-CHILD
class QOS-VOICE-TC
priority level 1
shape average percent 40
queue-limit 125000 bytes
!
class QOS-SIGNALING-TC
priority level 2
shape average percent 20
queue-limit 125000 bytes
!
class QOS-WIRELINE-TC
priority level 3
shape average percent 15
queue-limit 125000 bytes
!
class QOS-IPTV-TC
bandwidth remaining percent 28
queue-limit 125000 bytes
!
class QOS-HOSTED-AV-SMARTSCHEDULER-TC
bandwidth remaining percent 14
queue-limit 250000 bytes
!
class QOS-OAM-TC
bandwidth remaining percent 7
queue-limit 250000 bytes
!
class QOS-INT-PREMIUM-TC
bandwidth remaining percent 24
queue-limit 500000 bytes
!
class class-default
bandwidth remaining percent 27
queue-limit 500000 bytes
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-OUT-UBR-400-QUEUING-CHILD
class QOS-VOICE-TC
priority level 1
shape average percent 15
queue-limit 250000 bytes
!
class QOS-SIGNALING-TC
priority level 2
shape average percent 15
queue-limit 250000 bytes
!
class QOS-WIRELINE-TC
priority level 3
shape average percent 15
queue-limit 250000 bytes
!
class QOS-IPTV-TC
bandwidth remaining percent 28
queue-limit 250000 bytes
!
class QOS-HOSTED-AV-SMARTSCHEDULER-TC
bandwidth remaining percent 14
queue-limit 500000 bytes
!
class QOS-OAM-TC
bandwidth remaining percent 7
queue-limit 500000 bytes
!
class QOS-INT-PREMIUM-TC
bandwidth remaining percent 24
queue-limit 500000 bytes
!
class class-default
bandwidth remaining percent 27
queue-limit 500000 bytes
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-OUT-UBR-400-QUEUING-PARENT
class class-default
service-policy RJIL-QOS-NTWK-NNI-OUT-UBR-400-QUEUING-CHILD
shape average 400000000 bps
!
end-policy-map
!
!
policy-map RJIL-QOS-NTWK-NNI-OUT-MW-500-QUEUING-CHILD
class QOS-VOICE-TC
priority level 1
shape average percent 40
queue-limit 250000 bytes
!
class QOS-SIGNALING-TC
priority level 2
shape average percent 20
queue-limit 250000 bytes
!
class QOS-WIRELINE-TC
priority level 3
shape average percent 15
queue-limit 250000 bytes
!
class QOS-IPTV-TC
bandwidth remaining percent 28
queue-limit 250000 bytes
!
class QOS-HOSTED-AV-SMARTSCHEDULER-TC
bandwidth remaining percent 14
queue-limit 500000 bytes
!
class QOS-OAM-TC
bandwidth remaining percent 7
queue-limit 500000 bytes
!
class QOS-INT-PREMIUM-TC
bandwidth remaining percent 24
queue-limit 500000 bytes
!
class class-default
bandwidth remaining percent 27
queue-limit 500000 bytes
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-OUT-MW-250-QUEUING-PARENT
class class-default
service-policy RJIL-QOS-NTWK-NNI-OUT-MW-250-QUEUING-CHILD
shape average 230000000 bps
!
end-policy-map
!
policy-map RJIL-QOS-NTWK-NNI-OUT-MW-500-QUEUING-PARENT
class class-default
service-policy RJIL-QOS-NTWK-NNI-OUT-MW-500-QUEUING-CHILD
shape average 450000000 bps
!
end-policy-map
!
interface Loopback0
description *** HZBGNRTSESR001-CORE-LOOPBACK***
ipv4 address 172.23.83.111 255.255.255.255
ipv6 address 2405:200:201:3901:172:23:83:111/128
!
interface Loopback999
description *** Loopback interface for management ***
vrf RJIL-IP-MGMT
ipv4 address 172.23.83.111 255.255.255.255
ipv6 address 2405:200:204:0139:172:23:83:111/128
!
interface MgmtEth0/RP0/CPU0/0
shutdown
!
interface GigabitEthernet0/0/0/0
description # SMPS #
mtu 9216
service-policy input RJIL-QOS-IME-UNI-IN-PARENT
negotiation auto
load-interval 30
dampening
no shutdown
!
interface GigabitEthernet0/0/0/0.951 l2transport
description # IME-Utilities #
encapsulation untagged
!
interface GigabitEthernet0/0/0/1
description # SMPS #
mtu 9216
service-policy input RJIL-QOS-IME-UNI-IN-PARENT
negotiation auto
load-interval 30
dampening
no shutdown
!
interface GigabitEthernet0/0/0/1.951 l2transport
description # IME-Utilities #
encapsulation untagged
!
interface GigabitEthernet0/0/0/2
description # ACCESS CONTROL #
mtu 9216
service-policy input RJIL-QOS-IME-UNI-IN-PARENT
negotiation auto
load-interval 30
dampening
no shutdown
!
interface GigabitEthernet0/0/0/2.951 l2transport
description # IME-Utilities #
encapsulation untagged
!
interface GigabitEthernet0/0/0/3
shutdown
!
interface GigabitEthernet0/0/0/5
description # To eNode-B #
mtu 9216
negotiation auto
service-policy input RJIL-QOS-ENB-UNI-IN
service-policy output RJIL-QOS-ENB-UNI-OUT-PARENT
load-interval 30
no shutdown
!
interface GigabitEthernet0/0/0/5.101
description # To eNode-B - R4G_Bearer #
vrf RJIL-BEARER-ENB
ipv4 mtu 9216
ipv4 unreachables disable
ipv6 mtu 9216
ipv6 address 2405:200:139:700:3:2:101:5/126
ipv6 enable
ipv6 unreachables disable
load-interval 30
encapsulation dot1q 101
ipv6 access-group INFRA-iACL-IPv6-LTE ingress
!
interface GigabitEthernet0/0/0/5.102
description # To eNode-B - R4G_Signalling #
vrf RJIL-SIGNALING-ENB
ipv4 mtu 9216
ipv4 unreachables disable
ipv6 mtu 9216
ipv6 address 2405:200:139:700:3:2:102:5/126
ipv6 enable
ipv6 unreachables disable
load-interval 30
encapsulation dot1q 102
ipv6 access-group INFRA-iACL-IPv6-LTE ingress
!
interface GigabitEthernet0/0/0/5.103
description # To eNode-B - R4G_R4G_o&m #
vrf RJIL-OAM-ENB
ipv4 mtu 9216
ipv4 verify unicast source reachable-via any
ipv4 unreachables disable
ipv6 nd managed-config-flag
ipv6 mtu 9216
ipv6 verify unicast source reachable-via any
ipv6 address 2405:200:139:700:3:2:103:5/126
ipv6 enable
ipv6 unreachables disable
load-interval 30
encapsulation dot1q 103
ipv6 access-group INFRA-iACL-IPv6-LTE ingress
!
interface GigabitEthernet0/0/0/5.104
description # Multicast #
ipv4 mtu 9216
ipv4 unreachables disable
ipv6 mtu 9216
ipv6 enable
ipv6 unreachables disable
load-interval 30
encapsulation dot1q 104
ipv6 access-group INFRA-iACL-IPv6-LTE ingress
!
interface GigabitEthernet0/0/0/9
shutdown
!
interface GigabitEthernet0/0/0/11
shutdown
!
interface TenGigE0/0/0/18
shutdown
!
interface TenGigE0/0/0/19
shutdown
!
interface TenGigE0/0/0/20
shutdown
!
interface TenGigE0/0/0/21
shutdown
!
interface TenGigE0/0/0/22
shutdown
!
interface TenGigE0/0/0/23
shutdown
!
interface TenGigE0/0/0/24
description # TO-HZBGOKNIESR002-TenGigabitEthernet0/0/11-Fiber ##15871399 ##
mtu 9216
service-policy input RJIL-QOS-NTWK-NNI-IN-PARENT
service-policy output RJIL-QOS-NTWK-NNI-OUT-PARENT-MARKING
service-policy output RJIL-QOS-NTWK-NNI-OUT-PARENT-QUEUING
ipv4 address 10.85.136.189 255.255.255.254
ipv4 unreachables disable
ipv6 mtu 9216
ipv6 address 2405:200:139:0:10:85:136:189/127
ipv6 enable
ipv6 unreachables disable
carrier-delay up 2000 down 0
load-interval 30
no shutdown
!
interface TenGigE0/0/0/25
description # TO-HZBGNRTSESR002-TenGigabitEthernet0/0/10-Fiber ##15871400 ##
mtu 9216
service-policy input RJIL-QOS-NTWK-NNI-IN-PARENT
service-policy output RJIL-QOS-NTWK-NNI-OUT-PARENT-MARKING
service-policy output RJIL-QOS-NTWK-NNI-OUT-PARENT-QUEUING
ipv4 address 10.87.152.210 255.255.255.254
ipv4 unreachables disable
ipv6 mtu 9216
ipv6 address 2405:200:139:0:10:87:152:210/127
ipv6 enable
ipv6 unreachables disable
carrier-delay up 2000 down 0
load-interval 30
no shutdown
!
interface BVI951
description # IME-Utilities #
vrf RJIL-IME
ipv4 address 10.214.209.121 255.255.255.248
ipv4 mtu 9216
ipv4 unreachables disable
load-interval 30
!
route-policy CSR-COMM
set community (64600:133)
end-policy
!
route-policy RJIL-DROP-ALL
drop
end-policy
!
route-policy ADD-PATH-TO-IBGP
set path-selection backup 1 install
end-policy
!
router isis RAN
set-overload-bit on-startup 360
net 49.0003.1720.2308.3111.00
nsf cisco
log adjacency changes
lsp-gen-interval maximum-wait 5000 initial-wait 50 secondary-wait 200
lsp-refresh-interval 65000
max-lsp-lifetime 65535
lsp-password keychain ISIS-KEY level 2
address-family ipv4 unicast
metric-style wide
spf-interval maximum-wait 5000 initial-wait 50 secondary-wait 200
spf prefix-priority high tag 10
!
address-family ipv6 unicast
metric-style wide
spf-interval maximum-wait 5000 initial-wait 50 secondary-wait 200
single-topology
!
interface Loopback0
passive
address-family ipv4 unicast
tag 10
!
address-family ipv6 unicast
tag 10
!
!
interface TenGigE0/0/0/24
circuit-type level-2-only
bfd minimum-interval 50
bfd multiplier 3
bfd fast-detect ipv4
point-to-point
hello-padding disable
address-family ipv4 unicast
fast-reroute per-prefix
fast-reroute per-prefix remote-lfa tunnel mpls-ldp
mpls ldp sync
tag 20
!
address-family ipv6 unicast
tag 20
!
!
interface TenGigE0/0/0/25
circuit-type level-2-only
bfd minimum-interval 50
bfd multiplier 3
bfd fast-detect ipv4
point-to-point
hello-padding disable
address-family ipv4 unicast
fast-reroute per-prefix
fast-reroute per-prefix remote-lfa tunnel mpls-ldp
mpls ldp sync
tag 20
!
address-family ipv6 unicast
tag 20
!
!
!
snmp-server traps isis all
snmp-server traps bgp cbgp2 updown
snmp-server traps bgp updown
!
router bgp 55836
apply-group LABEL-MODE-PER-VRF
bfd minimum-interval 200
bfd multiplier 3
bgp router-id 172.23.83.111
bgp graceful-restart restart-time 120
bgp graceful-restart stalepath-time 360
bgp graceful-restart
address-family ipv4 unicast
nexthop trigger-delay critical 0
network 172.23.83.111/32 route-policy CSR-COMM
allocate-label all
!
address-family vpnv4 unicast
additional-paths receive
additional-paths send
additional-paths selection route-policy ADD-PATH-TO-IBGP
nexthop trigger-delay critical 1
!
address-family ipv6 unicast
nexthop trigger-delay critical 1
network 2405:200:201:3901:172:23:83:111/128 route-policy CSR-COMM
allocate-label all
!
address-family ipv6 multicast
!
address-family vpnv6 unicast
additional-paths receive
additional-paths send
additional-paths selection route-policy ADD-PATH-TO-IBGP
nexthop trigger-delay critical 1
!
neighbor-group RJIL-AG1-IBGP-GRP
remote-as 55836
password clear R4G_BgPi_P33r.2O14
update-source Loopback0
address-family ipv4 labeled-unicast
maximum-prefix 1500 85 warning-only
route-policy RJIL-PEER-AG1-OUT out
!
address-family vpnv4 unicast
!
address-family ipv6 labeled-unicast
maximum-prefix 1500 85 warning-only
route-policy RJIL-PEER-AG1-OUT out
!
address-family vpnv6 unicast
!
!
neighbor-group RJIL-AG1-IBGP-GRP-IPv6
remote-as 55836
password clear R4G_BgPi_P33r.2O14
update-source Loopback0
address-family ipv6 multicast
!
!
neighbor 172.18.252.163
use neighbor-group RJIL-AG1-IBGP-GRP
description *** PEERS WITH HZBGKRSHPAR001 ***
!
neighbor 172.18.252.164
use neighbor-group RJIL-AG1-IBGP-GRP
description *** PEERS WITH HZBGKRSHPAR002 ***
!
neighbor 2405:200:201:3901:172:18:252:163
use neighbor-group RJIL-AG1-IBGP-GRP-IPv6
description *** PEERS WITH ***
!
neighbor 2405:200:201:3901:172:18:252:164
use neighbor-group RJIL-AG1-IBGP-GRP-IPv6
description *** PEERS WITH HZBGKRSHPAR002 ***
!
vrf RJIL-IME
rd 172.23.83.111:6
address-family ipv4 unicast
redistribute connected
!
address-family ipv6 unicast
redistribute connected
!
!
vrf RJIL-IP-MGMT
rd 172.23.83.111:29
address-family ipv4 unicast
redistribute connected
!
address-family ipv6 unicast
redistribute connected
!
!
vrf RJIL-OAM-ENB
rd 172.23.83.111:3
address-family ipv6 unicast
redistribute connected
!
!
vrf RJIL-BEARER-ENB
rd 172.23.83.111:2
address-family ipv6 unicast
redistribute connected
!
!
vrf RJIL-WIFI-CISCO
rd 172.23.83.111:4
address-family ipv4 unicast
redistribute connected
!
address-family ipv6 unicast
redistribute connected
!
!
vrf RJIL-SIGNALING-ENB
rd 172.23.83.111:1
address-family ipv6 unicast
redistribute connected
!
!
!
mpls oam
!
dhcp ipv6
profile R4G-OAM-103 relay
helper-address vrf RJIL-OAM-ENB 2405:200:80e:732::10
source-interface GigabitEthernet0/0/0/5.103
!
interface GigabitEthernet0/0/0/5.103 relay profile R4G-OAM-103
!
l2vpn
bridge group IME-Utilities
bridge-domain IME-Utilities-951
interface GigabitEthernet0/0/0/0.951
storm-control broadcast kbps 50000
!
interface GigabitEthernet0/0/0/1.951
storm-control broadcast kbps 50000
!
interface GigabitEthernet0/0/0/2.951
storm-control broadcast kbps 50000
!
routed interface BVI951
!
!
!
!
snmp-server traps mpls frr all
snmp-server traps mpls frr protected
snmp-server traps mpls frr unprotected
snmp-server traps mpls ldp up
snmp-server traps mpls ldp down
snmp-server traps mpls ldp threshold
snmp-server traps mpls l3vpn all
snmp-server traps mpls l3vpn vrf-up
snmp-server traps mpls l3vpn vrf-down
snmp-server traps mpls l3vpn max-threshold-cleared
snmp-server traps mpls l3vpn max-threshold-exceeded
snmp-server traps mpls l3vpn mid-threshold-exceeded
snmp-server traps mpls l3vpn max-threshold-reissue-notif-time 1
!
mpls ldp
!
interface TenGigE0/0/0/24
!
interface TenGigE0/0/0/25
!
log
hello-adjacency
neighbor
graceful-restart
!
igp sync delay on-session-up 25
mldp
logging notifications
address-family ipv4
!
!
router-id 172.23.83.111
neighbor
password clear R4G_LdP_P33r.2O14
!
session protection
address-family ipv4
discovery targeted-hello accept
!
label
local
allocate for host-routes
advertise
for MPLS-LOOPBACK-IPV4
!
!
!
!
snmp-server traps pim neighbor-change
snmp-server traps pim interface-state-change
snmp-server traps msdp peer-state-change
!
multicast-routing
address-family ipv4
nsf
multipath
ssm range MCAST-SSM-IPV4
oom-handling
rate-per-route
interface all enable
accounting per-prefix
!
address-family ipv6
nsf
multipath
ssm range MCAST-SSM-IPV6
rate-per-route
interface all enable
accounting per-prefix
!
!
router mld
interface GigabitEthernet0/0/0/5.104
access-group MCAST-BDR-IPv6
query-timeout 180
query-interval 60
!
!
snmp-server traps sensor
snmp-server traps fru-ctrl
netconf agent tty
!
lldp
!
router pim
address-family ipv4
interface Loopback0
enable
!
interface TenGigE0/0/0/24
enable
!
interface TenGigE0/0/0/25
enable
!
!
!
hw-module fib ipv4 scale host-optimized-disable
hw-module profile qos ipv6 short-l2qos-enable
hw-module profile qos conform-aware-policer
hw-module profile qos hqos-enable
hw-module profile qos max-classmap-size 8
hw-module profile acl ipv6 ext-header permit
crypto ca trustpoint Trustpool
crl optional
vrf RJIL-IP-MGMT
!
crypto ca trustpoint CiscoLicenseRootCA
crl optional
vrf RJIL-IP-MGMT
enrollment url terminal
!
ssh timeout 60
ssh server rate-limit 600
ssh server max-auth-limit 4
ssh server v2
ssh server vrf RJIL-IP-MGMT
!
!
snmp-server traps ipsla
ipsla
hw-timestamp disable
responder
twamp
timeout 2000
!
!
server twamp
port 862
timer inactivity 1200
!
!

You might also like